A cloud-based identity and access management service for securing user authentication and resource access
To enable App Passwords for users or security groups in Microsoft Entra, an administrator must complete the following steps:
- Sign in to the Microsoft Entra admin center as at least an Authentication Policy Administrator.
- Navigate to Conditional Access > Named locations.
- Select "Configure MFA trusted IPs" in the bar across the top of the Conditional Access | Named Locations window.
- On the Multifactor authentication page, select the Allow users to create app passwords to sign in to non-browser apps option.
Once this is enabled, users will be required to create an app password as part of Microsoft Entra multifactor authentication registration. If the ability to create app passwords is disabled later, existing app passwords will continue to work, but users won't be able to manage or delete them.
References: